Processing Write Requests with Server Having Global Knowledge
    1.
    发明申请
    Processing Write Requests with Server Having Global Knowledge 有权
    处理具有全球知识的服务器的写请求

    公开(公告)号:US20090006487A1

    公开(公告)日:2009-01-01

    申请号:US11769474

    申请日:2007-06-27

    CPC分类号: G06F17/30215

    摘要: Described are embodiments directed to processing write requests using designated servers with global knowledge of information within a distributed system. The designated servers are used to enforce a data rule that limits the data that may be written to the distributed system. In order to ensure that data written to the distributed system is consistent with the data rule, when another server within the distributed system receives a request to write information that is subject to the data rule, it must consult with one of the designated servers before it can accept the write request. If the designated server determines that the data is consistent with the data rule, the write request is approved. Otherwise, the write request is denied.

    摘要翻译: 描述了使用具有分布式系统内的信息的全球知识的指定服务器来处理写入请求的实施例。 指定的服务器用于强制限制可能写入分布式系统的数据的数据规则。 为了确保写入分布式系统的数据与数据规则一致,当分布式系统中的其他服务器接收到写入受数据规则约束的信息的请求时,必须先与其中一个指定的服务器进行协商 可以接受写请求。 如果指定的服务器确定数据与数据规则一致,则写入请求将被批准。 否则写请求被拒绝。

    Processing write requests with server having global knowledge
    2.
    发明授权
    Processing write requests with server having global knowledge 有权
    用具有全球知识的服务器处理写请求

    公开(公告)号:US07945639B2

    公开(公告)日:2011-05-17

    申请号:US11769474

    申请日:2007-06-27

    IPC分类号: G06F15/16

    CPC分类号: G06F17/30215

    摘要: Described are embodiments directed to processing write requests using designated servers with global knowledge of information within a distributed system. The designated servers are used to enforce a data rule that limits the data that may be written to the distributed system. In order to ensure that data written to the distributed system is consistent with the data rule, when another server within the distributed system receives a request to write information that is subject to the data rule, it must consult with one of the designated servers before it can accept the write request. If the designated server determines that the data is consistent with the data rule, the write request is approved. Otherwise, the write request is denied.

    摘要翻译: 描述了使用具有分布式系统内的信息的全球知识的指定服务器来处理写入请求的实施例。 指定的服务器用于强制限制可能写入分布式系统的数据的数据规则。 为了确保写入分布式系统的数据与数据规则一致,当分布式系统中的其他服务器接收到写入受数据规则约束的信息的请求时,必须先与其中一个指定的服务器进行协商 可以接受写请求。 如果指定的服务器确定数据与数据规则一致,则写入请求将被批准。 否则写请求被拒绝。

    Self-describing authorization policy for accessing cloud-based resources
    3.
    发明授权
    Self-describing authorization policy for accessing cloud-based resources 有权
    用于访问基于云的资源的自我描述授权策略

    公开(公告)号:US08196175B2

    公开(公告)日:2012-06-05

    申请号:US12042637

    申请日:2008-03-05

    IPC分类号: G06F17/00

    CPC分类号: H04L63/0807 H04L63/102

    摘要: A ticketing system adapted for use with a cloud-based services platform is provided by a ticket-based authorization model in which the authorization requirements for traversing one or more meshes of resources associated with a cloud service are annotated in links included in a resource that refer to other resources. The meshes are thus self-describing with respect to the association among the resources (i.e., the links) as well as the authorization required to access resources. Resource access requires a principal ticket which asserts that a caller at a client (e.g., a security principal representing a device or identity associated with a user) is authenticated, plus zero or more claim tickets. The claim tickets make additional assertions about the caller that the cloud service may use to check that the caller is authorized to access the resource.

    摘要翻译: 适用于基于云的服务平台的票务系统由基于票据的授权模型提供,其中用于遍历与云服务相关联的一个或多个资源网格的授权要求在包括在引用的资源中的链接中注释 到其他资源。 因此,网格关于资源(即,链接)之间的关联以及访问资源所需的授权是自描述的。 资源访问需要一个主体票据,该票据确认在客户端的呼叫者(例如,表示与用户相关联的设备或身份的安全主体)被认证,加上零个或多个声明券。 索赔票据对云端服务可能用来检查呼叫者是否被授权访问资源的呼叫者做出额外的断言。

    SELF-DESCRIBING AUTHORIZATION POLICY FOR ACCESSING CLOUD-BASED RESOURCES
    4.
    发明申请
    SELF-DESCRIBING AUTHORIZATION POLICY FOR ACCESSING CLOUD-BASED RESOURCES 有权
    用于访问基于云的资源的自我描述授权政策

    公开(公告)号:US20090228950A1

    公开(公告)日:2009-09-10

    申请号:US12042637

    申请日:2008-03-05

    IPC分类号: H04L9/00

    CPC分类号: H04L63/0807 H04L63/102

    摘要: A ticketing system adapted for use with a cloud-based services platform is provided by a ticket-based authorization model in which the authorization requirements for traversing one or more meshes of resources associated with a cloud service are annotated in links included in a resource that refer to other resources. The meshes are thus self-describing with respect to the association among the resources (i.e., the links) as well as the authorization required to access resources. Resource access requires a principal ticket which asserts that a caller at a client (e.g., a security principal representing a device or identity associated with a user) is authenticated, plus zero or more claim tickets. The claim tickets make additional assertions about the caller that the cloud service may use to check that the caller is authorized to access the resource.

    摘要翻译: 适用于基于云的服务平台的票务系统由基于票据的授权模型提供,其中用于遍历与云服务相关联的一个或多个资源网格的授权要求在包括在引用的资源中的链接中注释 到其他资源。 因此,网格关于资源(即,链接)之间的关联以及访问资源所需的授权是自描述的。 资源访问需要一个主体票据,该票据确认在客户端的呼叫者(例如,表示与用户相关联的设备或身份的安全主体)被认证,加上零个或多个声明券。 索赔票据对云端服务可能用来检查呼叫者是否被授权访问资源的呼叫者做出额外的断言。

    Multiple Thread Pools for Processing Requests
    5.
    发明申请
    Multiple Thread Pools for Processing Requests 审中-公开
    用于处理请求的多个线程池

    公开(公告)号:US20090006520A1

    公开(公告)日:2009-01-01

    申请号:US11770498

    申请日:2007-06-28

    IPC分类号: G06F15/16

    CPC分类号: G06F9/4881

    摘要: In embodiments, servers within a distributed system include more than one thread pool from which threads may be allocated for processing requests received at the servers. The servers have a local thread pool from which threads for processing requests that require only local resources (resources stored locally on the server) are allocated. In embodiments, the server will include a remote thread pool from which threads are allocated for processing requests that require resources stored on any remote server. In other embodiments, the server will include a corresponding thread pool for each of a number of specified remote servers. When a request requires access to resources stored on a particular server, a thread from the corresponding thread pool associated with the particular server will be allocated for processing the request.

    摘要翻译: 在实施例中,分布式系统内的服务器包括多个线程池,从该线程池可以分配线程以处理在服务器处接收到的请求。 服务器具有本地线程池,用于处理仅需要本地资源(在服务器上本地存储的资源)的请求的线程将被分配。 在实施例中,服务器将包括远程线程池,从其分配线程用于处理需要存储在任何远程服务器上的资源的请求。 在其他实施例中,服务器将为多个指定的远程服务器中的每一个包括相应的线程池。 当请求需要访问存储在特定服务器上的资源时,来自与特定服务器相关联的相应线程池的线程将被分配用于处理该请求。